rundeck-plugins / rundeck-azure-plugin

8 stars 16 forks source link

RUN-826: Fixes CVE-2021-31684 #27

Closed paulcalabro closed 2 years ago

paulcalabro commented 2 years ago

This fixes a high severity vuln. More information can be found here.

fdevans commented 2 years ago

Thanks Paul, we'll review for 4.2.0

paulcalabro commented 2 years ago

Pushed a minor update to the description.

paulcalabro commented 2 years ago

Just an FYI, I looked at bumping com.microsoft.azure:azure to 1.41.2, but that didn't seem to resolve the vuln:

Screen Shot 2022-04-09 at 1 17 39 PM
paulcalabro commented 2 years ago

Thanks, @gschueler. I don't personally use the plugin myself. I do have a test environment in Azure though. I can manually test this if that helps.

fdevans commented 2 years ago

I can get someone to test functionality before 4.2.0 release

qualman commented 2 years ago

Looks like we have approval on the functionality. I'll go ahead and merge and get this released